Microsoft Says Ransomware Groups Are Exploiting the Newly-Patched VMware ESXi Flaw

The CVE-2024-37085 vulnerability is present in ESXi hypervisors and can be used to deploy data-extortion malware.

Security | TechRepublic – ​Read More

Australian Organisations Experiencing Highest Rate of Data Breaches, Reports Rubrik

Rubrik research finds data breaches were 50% more common in Australia than the global average in 2023.

Security | TechRepublic – ​Read More

Cost of Data Breach in 2024: $4.88 Million, Says Latest IBM Study

The average cost of a data breach jumped to $4.88 million from $4.45 million in 2023, a 10% spike.

The post Cost of Data Breach in 2024: $4.88 Million, Says Latest IBM Study appeared first on SecurityWeek.

SecurityWeek – ​Read More

Source Code of Phorpiex Botnet with Anti-AV Capabilities on Sale

The notorious Trik botnet, aka Phorpiex, is being sold in antivirus circles, offering advanced capabilities to evade detection. This C++ botnet includes modules such as a crypto clipper, a USB emitter, and a PE infector targeting crypto wallets.

Cyware News – Latest Cyber News – ​Read More

Five takeaways from Forrester’s 2024 state of application security

Application security often gets sacrificed for speed and to meet ever-tightening time-to-market windows for new apps.Read More

Security News | VentureBeat – ​Read More

Ubuntu Fixes Two OpenVPN Vulnerabilities

Ubuntu has fixed two vulnerabilities in OpenVPN, a virtual private network software. These vulnerabilities could keep the closing session active or lead to denial of service. Canonical released security updates for affected Ubuntu releases.

Cyware News – Latest Cyber News – ​Read More

Massive OTP-Stealing Android Malware Campaign Discovered 

Android malware can intercept and steal OTPs and login credentials, leading to complete account takeovers.

The post Massive OTP-Stealing Android Malware Campaign Discovered  appeared first on SecurityWeek.

SecurityWeek – ​Read More

Multiple SMTP Servers Vulnerable to Spoofing Attacks, Let Hackers Bypass Authentication

Multiple SMTP servers are vulnerable to spoofing attacks that allow hackers to bypass authentication. Two vulnerabilities, CVE-2024-7208 and CVE-2024-7209, exploit weaknesses in authentication and verification mechanisms provided by SPF and DKIM.

Cyware News – Latest Cyber News – ​Read More

Oracle challenges cloud giants with new Nvidia AI hardware offerings

Oracle expands its AI offerings with new Nvidia GPU options on OCI, challenging major cloud providers and catering to businesses of all sizes in the evolving AI landscape.Read More

Security News | VentureBeat – ​Read More

Analysis of Top Infostealers: Redline, Vidar and Formbook

Protect your data from cyber threats: Learn about RedLine, Vidar, and FormBook infostealers, their tactics, and how ANY.RUN’s…

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More